Technology blog

Cybersecurity Threat Landscape: Emerging threats and Mitigating Risks in 2024

Cybersecurity threats are rapidly evolving as new threats and sophisticated cybercriminal strategies emerge, creating significant challenges for organizations and the public.

According to the Kaspersky Incident Response Analyst Report 2023, 75% of cyberattack attempts exploited Microsoft Office, with the most common infection vectors being publicly available applications and compromised accounts. Attackers frequently use stolen credentials to conduct remote desktop protocol (RDP) attacks, phishing emails, and malicious files mimicking document templates.

Although attack attempts dropped by 36% in Q1 of 2023 compared to 2022, ransomware and cybersabotage remain the most significant threats.
“Governments were the most prolific target by threat actors followed distantly by manufacturing and financial institutions with the largest cyberthreat risk being ransomware and cybersabotage,” said Igor Kuznetsov, Director, Global Research & Analysis Team (GReAT) at Kaspersky.

Ransomware-as-a-Service (RaaS) has become a prominent trend, with cybercriminals operating like businesses, using affiliates to carry out attacks. Igor dispels three myths: cybercriminals aren’t just IT-educated criminals, ransomware targets aren’t pre-selected, and gangs don’t act alone. RaaS involves collaboration among various specialized actors, from access resellers to negotiators, making ransomware attacks increasingly sophisticated.

“Ultimately, affected organizations must not pay a ransom which will perpetuate and enable more cybercrime,” said Igor. “Victims can often recover their data without paying. Kaspersky maintains a vault of keys and tools to decrypt data locked by various ransomware families. Since 2018, over 1.5 million users worldwide have successfully recovered their data using these resources.”

Supply chain attacks, particularly those involving containerized systems running on open-source software, present another major threat. “Containerized systems often rely on numerous third-party dependencies, introducing significant supply chain risks from both malicious intent and unintentional flaws,” explains Igor. He cites two examples: “The Crowdstrike event caused an outage on millions of devices, demonstrating how a faulty update can have widespread impact.

Additionally, a less publicized attack on XZ Linux utilities could have compromised millions of SSH-enabled devices.”

More information can be found at Kaspersky

About Kaspersky

Kaspersky is a global cybersecurity and digital privacy company founded in 1997. With over a billion devices protected to date from emerging cyberthreats and targeted attacks, Kaspersky’s deep threat intelligence and security expertise is constantly transforming into innovative solutions and services to protect businesses, critical infrastructure, governments and consumers around the globe.

The company’s comprehensive security portfolio includes leading endpoint protection, specialised security products and services, as well as Cyber Immune solutions to fight sophisticated and evolving digital threats. We help over 220,000 corporate clients protect what matters most to them. Learn more at www.kaspersky.com.

 

Tech and Teen

Recent Posts

vivo V50 5G Pre-Orders Begin in Bangladesh with Exclusive Gifts

Following the official launch of vivo’s latest V-series flagship, the much-anticipated vivo V50 5G is…

7 hours ago

Bangladeshi health and well-being champion Murad Ansary named Asia regional winner for 2025 Commonwealth Youth Awards

Murad Ansary, a Bangladeshi well-being advocate, has been named the top regional winner for Asia…

7 hours ago

HONOR finally brings globally hyped X9c to Bangladesh

HONOR Bangladesh, a leading global technology brand, is bringing HONOR X9c – The Unbreakable AI…

2 days ago

Visa celebrates Ramadan and other Festivities with Exciting Rewards and Offers for Cardholders

Visa (NYSE: V), the global leader in digital payments, has recently announced its first in-market…

2 days ago

Shop with Nagad at top brands, enjoy attractive cashback

On the occasion of Eid-ul-Fitr, Nagad, the digital financial service of Bangladesh Postal Department, has…

2 days ago

OPPO A5 Pro Launches as Dual Certified, All-Round Durable Trendsetter in Bangladesh

OPPO, the global technology brand, has officially launched the all-round durable OPPO A5 Pro in…

2 days ago